跳到主要导航 跳到搜索 跳到主要内容

CryptCloud: Secure and Expressive Data Access Control for Cloud Storage

  • Jianting Ning
  • , Zhenfu Cao
  • , Xiaolei Dong
  • , Kaitai Liang
  • , Lifei Wei*
  • , Kim Kwang Raymond Choo
  • *此作品的通讯作者
  • National University of Singapore
  • University of Surrey
  • Shanghai Ocean University
  • University of Texas at San Antonio

科研成果: 期刊稿件文章同行评审

摘要

Secure cloud storage, which is an emerging cloud service, is designed to protect the confidentiality of outsourced data but also to provide flexible data access for cloud users whose data is out of physical control. Ciphertext-Policy Attribute-Based Encryption (CP-ABE) is regarded as one of the most promising techniques that may be leveraged to secure the guarantee of the service. However, the use of CP-ABE may yield an inevitable security breach which is known as the misuse of access credential (i.e., decryption rights), due to the intrinsic 'all-or-nothing' decryption feature of CP-ABE. In this paper, we investigate the two main cases of access credential misuse: one is on the semi-trusted authority side, and the other is on the side of cloud user. To mitigate the misuse, we propose the first accountable authority and revocable CP-ABE based cloud storage system with white-box traceability and auditing, referred to as CryptCloud++. We also present the security analysis and further demonstrate the utility of our system via experiments.

源语言英语
文章编号8252795
页(从-至)111-124
页数14
期刊IEEE Transactions on Services Computing
14
1
DOI
出版状态已出版 - 1 1月 2021

指纹

探究 'CryptCloud: Secure and Expressive Data Access Control for Cloud Storage' 的科研主题。它们共同构成独一无二的指纹。

引用此